Embedded GSOC Intelligence Team Leader

Sibylline

Toronto

On-site

CAD 100,000 - 125,000

Full time

24 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

PTO 20 days
Sick leave 5 days

Job summary

Sibylline in Toronto seeks an experienced GSOC Intelligence Team Leader to establish and manage a 24/7/365 security operations centre for a multinational e-commerce client. You will lead analysts, drive threat monitoring, incident response, and intelligence delivery with a focus on high-quality output.

Based onsite, you will manage scheduling, training, and stakeholder engagement, align priorities with clients and Sibylline management, and ensure smooth transition as the team comes online.

Qualifications

  • Experience in international security, intelligence, risk or geopolitics.
  • Strong written and spoken English; high attention to detail.
  • 5+ years in corporate security or similar, with 2+ years line management.

Responsibilities

  • Lead and establish a 24/7/365 GSOC team for a multinational client.
  • Manage scheduling, training, performance, and quality of intelligence work.
  • Oversee incident response, triage, and SOP adherence.
  • Serve as the primary liaison with client and Sibylline management.
  • Set intelligence priorities with security stakeholders.
  • Provide mentorship and develop team capabilities.
  • Ensure cross-functional stakeholder relationships.
  • Identify process gaps and implement corrective actions.

Skills

GSOC leadership
Threat monitoring
OSINT analysis
Team management
Incident response

Education

International Security
Intelligence
Risk Management

Tools

GSOC tools
OSINT platforms
SOCMINT platforms

Job description

Sibylline is the world's largest private intelligence firm, helping organisations manage risk, spot opportunity, and build resilience in an increasingly volatile world.

Our people provide the insight that leaders need to navigate today's complex geopolitical landscape. It's meaningful work, with high-profile clients and real-world stakes – and that's what makes it so rewarding.

We're innovative, entrepreneurial, and growing fast, which means genuine opportunities to take on complex challenges, work with cutting-edge technology, and build your career, whatever stage you're at.

Everyone brings something different to the table, and we want that reflected in how we operate. Our roles suit a wide range of working styles, personalities, and interests, and we invest heavily in our managers so that every person gets the support they need to do their best work.

We're looking for people who are ambitious, discreet, and sharp, with strong integrity and a genuine curiosity about the world. If you're comfortable with uncertainty, energised by complex problems, and passionate about global affairs, we'd love to hear from you.

About Sibylline

Sibylline is the world's largest private intelligence firm, helping organisations manage risk, spot opportunity, and build resilience in an increasingly volatile world.

Our people provide the insight that leaders need to navigate today's complex geopolitical landscape. It's meaningful work, with high-profile clients and real-world stakes – and that's what makes it so rewarding.

We're innovative, entrepreneurial, and growing fast, which means genuine opportunities to take on complex challenges, work with cutting-edge technology, and build your career, whatever stage you're at.

Everyone brings something different to the table, and we want that reflected in how we operate. Our roles suit a wide range of working styles, personalities, and interests, and we invest heavily in our managers so that every person gets the support they need to do their best work.

We're looking for people who are ambitious, discreet, and sharp, with strong integrity and a genuine curiosity about the world. If you're comfortable with uncertainty, energised by complex problems, and passionate about global affairs, we'd love to hear from you.

Job Description

Expected Compensation: C$100,000 – C$125,000 per year

Location: Onsite, Toronto, ON

Vacancy Status: Existing Vacancy

This role will close for applications at 0900 EDT on Monday 14 September 2026.

Benefits
  • PTO: 20 days per annum
  • Sick: 5 paid days per annum
Position Summary

We are looking for an experienced security and intelligence professional to join us as an embedded GSOC Intelligence Team Leader for a newly established Global Security Operations Centre (GSOC) at a multinational e-commerce client. The GSOC Manager will lead a 24/7/365 team of GSOC Intelligence Analysts providing threat monitoring, incident response, intelligence analysis, and physical security operations.

You will be responsible for leading, managing, and developing the GSOC team. This will include line management, scheduling, identifying training needs and delivering training, and performance management. The Team Leader will also be responsible for setting the standard for high-quality intelligence analysis work and as a power user for all tools and systems used by the GSOC. This role will also involve working closely with Sibylline management and the client to ensure a smooth transition as the new team comes online. You will proactively engage with the client and stakeholders on monitoring and intelligence needs and priorities, and help to scope the output and strategic deliverables of the team.

This is an onsite role at the client’s Toronto office, working Monday to Friday, 9am-5pm. There may be occasional need to work out-of-hours during emergencies and time sensitive matters.

Essential Functions / Responsibilities
  • Drive the implementation of the new GSOC team, identifying the client’s immediate delivery needs and any team training requirements

  • Set team priorities, delegate tasks, manage deadlines, provide feedback, and ensure high-quality service delivery

  • Manage the 24/7/365 shift schedule and ensure full shift coverage

  • Monitor and direct the team’s use of security systems, intelligence and open-source tools

  • Lead oversight of GSOC’s adherence to incident response, triage, and escalation Standard Operating Procedures (SOPs)

  • Provide continuous editorial and mentoring support for the GSOC team

  • Define and agree on key intelligence priorities with security stakeholders to optimise the production and delivery of intelligence products and briefings

  • Build and maintain cross-functional stakeholder relationships

  • Identify process gaps, training gaps, configuration issues, or workflow friction, and implement corrective actions in a timely manner

  • Display creating thinking and consulting skills to deliver a continually improving service for the client

  • Other duties as assigned

Knowledge, Skills, and Abilities
  • Experience, knowledge, and interest in current affairs, international relations and emerging security threats

  • Advanced research, intelligence gathering and analytical skills, and the ability to write high-quality products and deliver high-impact briefings for a senior security audience

  • Excellent English written and verbal communication skills, with a high attention to detail and strong ability to quality assure (peer review) intelligence products

  • Excellent time management and prioritisation skills, with the ability to set and meet deadlines and manage own / team’s workload accordingly

  • Ability to solve complex problems with patience and precision, whilst retaining focus on customer needs

  • Ability to build rapport, strong and sustainable relationships, and interact within all levels of the client

  • Ability to develop and deliver training and support direct reports’ professional development

Qualifications
  • Undergraduate or Postgraduate qualifications in International Security, Intelligence, Risk, Geopolitics or other related disciplines, or equivalent professional experience

  • Experience with GSOC and intelligence tools, including threat monitoring, OSINT, and SOCMINT platforms

  • At least 5+ years total experience working in a corporate setting or similar public or private sector environments, with at least 2+ year line management experience

  • Fluent written and spoken English

  • Preferred cross-functional experience within a global security team (e.g. threat monitoring, travel security, business continuity, crisis management), particularly in a leadership role

Work Environment/Physical Requirements

This position is moderately self-directed and requires understanding and compliance with company policies, procedures, and values. While performing the duties of this job, the employee is regularly required to interact collaboratively with the team and stakeholders, and communicate via phone, videophone, or text messaging. The position may require travel up to 5%.

Additional Information
Interview Process
  • Initial call with our Talent Acquisition team member
  • Timed written assessment (arranged at a time that suits you) to test writing and analytical capability
  • Panel interview with some of the team members and hiring managers at Sibylline
  • Meet and Greet with the client
Artificial Intelligence:

Not used in candidate screening

Sibylline is committed to the recruitment and selection of candidates without regard for sexual orientation, gender, ethnicity, age, political beliefs, culture, and lifestyle. We are committed to fostering a business culture that reflects these values and promotes equal opportunity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Embedded GSOC Intelligence Team Leader
Embedded GSOC Intelligence Team Leader

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Embedded Junior GSOC Intelligence Analyst
Embedded Junior GSOC Intelligence Analyst

Sibylline Ltd • Toronto

On-site
CAD 65,000 - 85,000
20 days PTO
5 sick days
Embedded Junior GSOC Intelligence Analyst
Embedded Junior GSOC Intelligence Analyst

Sibylline • Toronto

On-site
CAD 65,000 - 85,000
Embedded GSOC Junior Intelligence Analyst
Embedded GSOC Junior Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 65,000 - 85,000
20 days PTO
5 sick days
Embedded GSOC Intelligence Analyst
Embedded GSOC Intelligence Analyst

Sibylline Canada • Toronto

On-site
CAD 85,000 - 100,000
20 days PTO per annum
5 paid sick days per annum
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)
GSOC Intelligence Team Lead - 24/7 Security Ops (Toronto)

Sibylline Canada • Toronto

On-site
CAD 100,000 - 125,000
Investigator
Investigator

AFIMAC Canada • Ottawa

On-site
CAD 29,000 - 40,000
Competitive hourly wage
Education through GardaWorld Academy
Career growth at GardaWorld
+1
Cybersecurity Incident Response Commander
Cybersecurity Incident Response Commander

ISA Cybersecurity Inc • Toronto

On-site
CAD 135,000 - 180,000
Flexible sick and personal days
Generous health plan
RRSP matching and bonus programs
+1
Junior GSOC Intelligence Analyst: 24/7 Global Security Ops
Junior GSOC Intelligence Analyst: 24/7 Global Security Ops

Sibylline • Toronto

On-site
CAD 65,000 - 85,000
SOC Director
SOC Director

Socket.dev • Montreal (administrative region)

On-site
CAD 120,000 - 170,000
Group insurance plan
RRSP and matching employer contrib.
Stock options
+1